CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14222  CVE-2005-3016  Candidate  Multiple unspecified vulnerabilities in the WYSIWYG editor in PHP-Nuke before 7.9 Final have unknown impact and attack vectors.  Assigned (20050921)  None (candidate not yet proposed)    View
14223  CVE-2005-3017  Candidate  PHP file inclusion vulnerability in index.php in Content2Web 1.0.1 allows remote attackers to include arbitrary files via the show parameter, which can lead to resultant errors such as path disclosure, SQL error messages, and cross-site scripting (XSS).  Assigned (20050921)  None (candidate not yet proposed)    View
14224  CVE-2005-3018  Candidate  Apple Safari allows remote attackers to cause a denial of service (application crash) via a crafted data:// URL.  Assigned (20050921)  None (candidate not yet proposed)    View
14225  CVE-2005-3019  Candidate  Multiple SQL injection vulnerabilities in vBulletin before 3.0.9 allow remote attackers to execute arbitrary SQL commands via the (1) request parameter to joinrequests.php, (2) limitnumber or (3) limitstart to user.php, (4) usertitle.php, or (5) usertools.php.  Assigned (20050921)  None (candidate not yet proposed)    View
14226  CVE-2005-3020  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in vBulletin before 3.0.9 allow remote attackers to inject arbitrary web script or HTML via the (1) group parameter to css.php, (2) redirect parameter to index.php, (3) email parameter to user.php, (4) goto parameter to language.php, (5) orderby parameter to modlog.php, and the (6) hex, (7) rgb, or (8) expandset parameter to template.php.  Assigned (20050921)  None (candidate not yet proposed)    View

Page 18885 of 20943, showing 5 records out of 104715 total, starting on record 94421, ending on 94425

Actions